Vulnerabilities > Juniper > Paragon Active Assurance Control Center

DATE CVE VULNERABILITY TITLE RISK
2024-01-12 CVE-2024-21589 Unspecified vulnerability in Juniper Paragon Active Assurance Control Center
An Improper Access Control vulnerability in the Juniper Networks Paragon Active Assurance Control Center allows an unauthenticated network-based attacker to access reports without authenticating, potentially containing sensitive configuration information. A feature was introduced in version 3.1.0 of the Paragon Active Assurance Control Center which allows users to selectively share account data.
network
low complexity
juniper
7.5
2022-04-14 CVE-2022-22190 Authorization Bypass Through User-Controlled Key vulnerability in Juniper Paragon Active Assurance Control Center 3.1.0
An Improper Access Control vulnerability in the Juniper Networks Paragon Active Assurance Control Center allows an unauthenticated attacker to leverage a crafted URL to generate PDF reports, potentially containing sensitive configuration information.
network
low complexity
juniper CWE-639
7.5
2021-04-22 CVE-2021-0232 Authentication Bypass by Spoofing vulnerability in multiple products
An authentication bypass vulnerability in the Juniper Networks Paragon Active Assurance Control Center may allow an attacker with specific information about the deployment to mimic an already registered Test Agent and access its configuration including associated inventory details.
network
high complexity
juniper fedoraproject CWE-290
7.4